The Central Bank of Iraq’s Information Security Department held a workshop on governance, risk management and compliance (GRC), presenting the framework as a core pillar for improving the efficiency and effectiveness of institutional work. The workshop covered governance and its role in supporting decision-making, foundations of cyber risk management linked to information security including how risks are identified, assessed and treated, and the importance of complying with relevant systems, instructions and legislation. It also addressed how information security supports the GRC framework within financial institutions.